CVE-2026-28324

LOWCVSS 9.8 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability due to the insufficient integrity checks. Installations configured in a non-default and non-secure configuration are affected.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-345

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-09-23: 309-23
Referenced assets3 URLs
Full discourse3 posts
  • Daily CyberSecurity@Daily_CyberSec

    SolarWinds Observability vulnerabilities allow RCE via CVE-2026-28324. Update to version 2026.2.3 to secure your monitoring infrastructure today. #SolarWinds #Cybersecurity #CVE202628324 #CVE202628325 #RCE #Infosec https://securityonline.info/solarwinds-observability-vulnerabilities-fixed/

    10021340
    13.0K followersView on X
  • ThreatAft@ThreatAft

    🚨 SOLARWINDS OBSERVABILITY CVE-2026-28324 — CVSS 9.8 Unauthenticated RCE via malformed network request. Insufficient integrity checks (CWE-345). Affected: 2026.2.2 and below Fixed: 2026.2.3 → https://threataft.com/articles/solarwinds-observability-cve-2026-28324-unauthenticated-rce #SolarWinds #CVE #PatchNow #CyberSecurity #ThreatIntel

    0000017
    43 followersView on X
  • The Daily Tech Feed@dailytechonx

    Urgent update: SolarWinds has patched two severe RCE vulnerabilities (CVE-2026-28324 and -28325) in Observability Self-Hosted 2026.2.3. If you run non-default configurations or use WPM players, verify your deployments’ communication mode, credentials, and exposure now. Older versions (2024.2 and earlier) are unsupported and vulnerable. #SecurityNews #Vulnerability #RemoteCodeExecution #SolarWinds #Observability #Cybersafety https://thedailytechfeed.com/urgent-solarwinds-hotfix-seals-critical-rce-flaws-in-observability-servers/

    0000027
    737 followersView on X

Explore more